Tuesday , October 6 2026

Pillar 4: Total 131 Indicators Set
How Bangladeshi’s Ogrs Be Evaluated By Newly Launched NRS & CIRS

Bangladesh’s National Cyber Security Agency (NCSA) has launched two cybersecurity initiatives: the Cyber Incident Reporting System (CIRS) and the National Rating System (NRS). These aim to help manage cyber incidents better and improve the cybersecurity skills of organizations in the country.

These initiatives aim to build a system for reporting cyber incidents, central monitoring, and uniform cybersecurity checks for government and private organizations.

Citrix NetScaler SAML 0-Day Flaw Under Attack

Citrix has put out emergency security updates for a NetScaler SAML flaw that hackers are using. Known as CVE-2026-88779, this...
Read More
Citrix NetScaler SAML 0-Day Flaw Under Attack

Major Danish university breached, 200,000 users at risk

Hackers got into the identity and access management system at the Technical University of Denmark (DTU) and downloaded a lot...
Read More
Major Danish university breached, 200,000 users at risk

Microsoft’s X account hijacked to promote Clippy crypto scam

Microsoft's official X account was taken over to promote an unapproved Clippy-themed cryptocurrency. The tech giant’s X account, with 13...
Read More
Microsoft’s X account hijacked to promote Clippy crypto scam

Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

CPanel has put out security updates to fix three problems in cPanel & WHM. These problems could let attackers take...
Read More
Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Nearly 100,000 Bee Cheng Hiang customers had their email addresses leaked when an employee used an AI tool to generate...
Read More
Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Hackers to exploit a flaw in Zimbra mail servers that are connected to the Internet. They send special emails that...
Read More
Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

Google has said that hackers are using two serious Citrix NetScaler security holes to get root access, set up hidden...
Read More
Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is alerting people about a major flaw in MikroTik RouterOS. This could...
Read More
CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been...
Read More
Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The...
Read More
JadePuffer Agentic AI targets and destroys Azure’s cloud resources

Cyber Incident Reporting System (CIRS)

Cyber Incident Reporting System (CIRS) is a simple online platform for citizens, organizations, and approved users to report cyber events easily to (report.ncsa.gov.bd).

Users can send reports about cyber fraud, online harassment, unauthorized access, data breaches, harmful content, and other cyber issues according to the NCSA document. The platform lets users upload proof, add website or social media links, get a Complaint ID automatically, and check the status of their reports during the investigation.

Each submitted report follows a defined workflow that includes:

Complaint submission
Verification
Analysis
Escalation
Response
Monitoring
Resolution

Source: NCSA

Reports can start at the Upazila level. If needed, they can go up to the District level. For complicated or important cases, they are sent to the National Cyber Security Agency (NCSA).

Source: NCSA

Dashboard and Inter-Agency Coordination

The CIRS platform includes role-based dashboards for monitoring:

Total reported incidents
New reports
Reports under verification
Resolved cases
Escalated incidents
Category-based statistics
District and Upazila trends
High-priority cyber incidents
Time-based performance indicators

The framework also suggests sharing information among agencies like NSI, BTRC, and law enforcement to help with better decision-making and to understand the national cyber situation.

Source: NCSA

Future Roadmap for CIRS

The NCSA document outlines several future enhancements planned for the platform, including:

AI-based trend analysis
Risk scoring
Early warning capabilities
Intelligence-sharing modules
Fact-checking functionality to verify viral information and misinformation
Secure sharing of phishing indicators, malicious domains, and other threat intelligence

National Rating System (NRS)

NCSA has also unveiled the National Rating System (NRS) based on a framework that rates the maturity of ICT and cyber security.

The framework aims to create a standard way to assess ICT, information security, and cybersecurity skills in both public and private organizations in Bangladesh. It seeks to find strengths, weaknesses, and spots that need better cybersecurity.

Four Assessment Pillars:

Organizations will be evaluated across four weighted categories:

IT & Information Security Governance:             20%
Infrastructure & Operations:                             30%
Cyber Security & Data Protection:                    30%
Digital Service & User Maturity:                        20%

The framework uses a scale from 0 to 4 to check how well organizations are doing, from not started to fully developed and optimized.

131 Assessment Indicators

Organizations will be judged based on 131 assessment indicators. These indicators were created to match global standards, frameworks, and best practices in cybersecurity.

Overall scores will determine institutional grades, ranging from:

A – Excellent
B – Very Good
C – Good
D – Fair
E – Poor

Expected Benefits

The framework identifies several expected outcomes, including:

Establishing a national cybersecurity maturity baseline.
Identifying institutional risks and capability gaps.
Supporting IT audits and Vulnerability Assessment and Penetration Testing (VAPT) prioritization.
Assisting organizations with cybersecurity planning, budgeting, and workforce development.
Strengthening national cyber resilience and evidence-based policymaking.

Future plans involve using AI for automatic assessments, checking evidence automatically, dashboards for comparing different sectors, and advice based on risks for organizations.

Why It Matters

The Cyber Incident Reporting System (CIRS) and the National Rating System (NRS) are two key parts of Bangladesh’s growing cybersecurity setup. CIRS aims to make reporting incidents, working together, and responding better. NRS provides a standard way to measure and improve cybersecurity levels in organizations. If these plans are followed as described in the NCSA documents, they should help see cyber threats better, boost readiness, and help Bangladesh become more resilient digitally.

Bangladesh Launches (CIRS) and National ICT & Cyber Security Rating System (NRS)

Check Also

AIDCQ

AIDCQ Propose to invest $2 billion in AI data center in Bangladesh

Many countries are now showing interest to invest in the data center industry in Banglades …